CVE-2013-4032: Input Validation
Published Oct 2, 2013
·Updated
The Fast Communications Manager (FCM) in IBM DB2 Enterprise Server Edition and Advanced Enterprise Server Edition 10.1 before FP3 and 10.5, when a multi-node configuration is used, allows remote attackers to cause a denial of service via vectors involving arbitrary data.
Affected Software
2 affected components
IBM DB2=10.1
IBM DB2=10.5
Event History
Oct 2, 2013
CVE Published
via MITRE·10:00 AM
Data Sourced
via MITRE·10:00 AM
Description
Frequently Asked Questions
1
What is the severity of CVE-2013-4032?
CVE-2013-4032 has a severity rating that indicates a risk of denial of service due to vulnerabilities in IBM DB2.
2
How do I fix CVE-2013-4032?
To fix CVE-2013-4032, upgrade to IBM DB2 versions 10.1 FP3 or 10.5 or later.
3
Which IBM DB2 versions are affected by CVE-2013-4032?
CVE-2013-4032 affects IBM DB2 versions 10.1 before FP3 and 10.5.
4
What does CVE-2013-4032 allow attackers to do?
CVE-2013-4032 allows remote attackers to cause a denial of service in a multi-node configuration.
5
Is CVE-2013-4032 specific to certain server editions of IBM DB2?
Yes, CVE-2013-4032 specifically affects the Enterprise Server Edition and Advanced Enterprise Server Edition of IBM DB2.